{
  "contour": "EM-XCT-05",
  "stage": "Codex direct research before provider reconciliation",
  "checkedOn": "2026-09-21",
  "claimScope": "Only the named passages were read. This does not verify every claim, historical citation or normative conformance in the parent models.",
  "sources": [
    {
      "id": "S1",
      "url": "https://www.w3.org/TR/2018/REC-odrl-model-20180215/",
      "retrievedUrl": "https://www.w3.org/TR/odrl-model/",
      "edition": "ODRL Information Model 2.2, W3C Recommendation, 15 February 2018",
      "sectionsRead": ["1.3 Terminology", "2.1 Policy", "2.9 Inheritance", "2.10 Conflict Strategy", "3.2 Profile Conformance"],
      "evidence": "observed",
      "observed": "The model separates policy validation from evaluation and names permission, prohibition and duty. Conflict handling is explicit, defaulting to invalid; an unrecognized declared profile stops processing.",
      "inference": "Our reference must distinguish a well-formed declaration from a current serving decision and reject unsupported policy semantics.",
      "limit": "Conceptual comparison only; no ODRL serializer, evaluator or conformance claim."
    },
    {
      "id": "S2",
      "url": "https://www.w3.org/TR/odrl-vocab/",
      "edition": "ODRL Vocabulary and Expression 2.2, W3C Recommendation, 15 February 2018",
      "sectionsRead": ["4.4.4 Anonymize", "4.5.19 Purpose"],
      "evidence": "observed",
      "observed": "Purpose is a rule-action operand; anonymize is an action vocabulary term.",
      "inference": "Naming an action supplies neither an implemented transformation nor a measured disclosure guarantee.",
      "limit": "No anonymization algorithm or quantitative privacy mechanism is imported."
    },
    {
      "id": "S3",
      "url": "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-162.pdf",
      "landingUrl": "https://csrc.nist.gov/pubs/sp/800/162/upd2/final",
      "edition": "NIST SP 800-162, January 2014, updated 2 August 2019",
      "sectionsRead": ["Abstract", "2.4.3, printed pages 14–16, PDF pages 23–25"],
      "evidence": "observed",
      "observed": "ABAC evaluates subject, object, operation and context attributes under policy. Decision, enforcement, information and administration are distinct cooperating functions.",
      "inference": "A package review artifact must not present itself as enforcement. Host authentication, fresh attributes and atomic serving controls are separate integration requirements.",
      "limit": "No complete ABAC implementation or NIST certification is claimed."
    },
    {
      "id": "S4",
      "url": "https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-188.pdf",
      "landingUrl": "https://csrc.nist.gov/pubs/sp/800/188/final",
      "edition": "NIST SP 800-188, September 2023",
      "sectionsRead": ["Abstract", "3.4 closing discussion, printed page 33", "3.5 Five Safes, printed pages 33–34", "3.6 Disclosure Review Boards, printed pages 34–35"],
      "evidence": "observed",
      "observed": "Repeated releases and external data can create disclosure risks despite vetted individual queries. Review boards provide accountable governance; project, people, data, setting and output risks require distinct consideration.",
      "inference": "Pin the exact combination and its relevant prior-release context. A positive manual review is an attributed assessment, not a mathematical guarantee against inference.",
      "limit": "US government guidance is used for design comparison, not a universal enterprise law or a claim of anonymization."
    },
    {
      "id": "S5",
      "url": "https://docs.aws.amazon.com/AmazonS3/latest/userguide/object-lock.html",
      "edition": "Living vendor documentation read 21 September 2026",
      "sectionsRead": ["How Object Lock works", "Legal holds", "How deletes work with S3 Object Lock"],
      "evidence": "observed",
      "observed": "Retention and hold protection attaches to object versions. A hold can remain after retention expires. A simple delete may create a delete marker while leaving a protected version intact.",
      "inference": "Stop-serving, a deletion marker, actual version destruction and verified disposal must be separate records; a hold and retention schedule are independent constraints.",
      "limit": "This is a concrete storage counterexample, not an S3 adapter or general legal-retention rule. No vendor-specific code is copied."
    }
  ],
  "schools": ["Policy expression standards", "Access and disclosure governance guidance", "Implemented versioned storage behavior"],
  "unavailable": [
    {"url": "https://w3c.github.io/dpv/2.0/dpv/", "result": "Moved page only; substantive vocabulary not read"},
    {"url": "https://w3id.org/dpv/2.1/", "result": "Browser research tool returned Internal Error; no field or version claim adopted"}
  ],
  "licensing": "Original paraphrases and original proposed contracts only. No third-party schema or classifier is copied; confirm licenses before any future import."
}
